Skip to content

Malware

Gmera

aka StockSteal · Kassi

According to PCrisk, GMERA (also known as Kassi trojan) is malicious software that disguises itself as Stockfolio, a legitimate trading app created for Mac users.

Gmera, also known as StockSteal, Kassi, is a macOS malware family.

Background

PCrisk describes GMERA (also called the Kassi trojan) as malware that masquerades as Stockfolio, a genuine trading application for Mac users. Two strains have been documented, detected respectively as Trojan.MacOS.GMERA.A and Trojan.MacOS.GMERA.B. Attackers distribute GMERA to collect a range of information and send it to a website they control, so prompt removal is advised to limit the damage.


Source: Malpedia (Fraunhofer FKIE).